0f29ca61f2667c5a6e3f73ea6ba4672aacffa90caded20a2aa86ad9fa191d8e0

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
Compilation Date 2026-Feb-17 17:39:29
Detected languages English - United States
Debug artifacts C:\build\output\unity\unity\artifacts\WindowsPlayer\Win_x64_VS2022_VB_MT_nondev_i_r\WindowsPlayer_player_Master_il2cpp_x64.pdb
FileVersion 6000.3.10.14901004
LegalCopyright (c) 2005-2026 Unity Technologies. All rights reserved.
ProductVersion 6000.3.10f1 (e35f0c77bd8e)

Plugin Output

Info The PE contains common functions which appear in legitimate applications. [!] The program may be hiding some of its imports:
  • GetProcAddress
  • LoadLibraryExW
Suspicious The PE is possibly a dropper. Resources amount for 84.5627% of the executable.
Safe VirusTotal score: 0/68 (Scanned on 2026-06-24 15:09:52) All the AVs think this file is safe.

Hashes

MD5 83fdc75a2d0957d7dc1359e92e23d433
SHA1 056165a195d9166a6ce7bf35b349eb65fd8d0f9e
SHA256 0f29ca61f2667c5a6e3f73ea6ba4672aacffa90caded20a2aa86ad9fa191d8e0
SHA3 5aac5278feafaa5a1c9cc73de4cf6af33934692650d70599d599175d1a1a1d6d
SSDeep 6144:HaMjvuUwZpIUhLA87IAoKHHdGpZlFj/7JlOlgUtfBOjrILs:HtVwZpJhjbVHHdGpZ/fAS4
Imports Hash a136217cdd3247ff6a8766561064ca0b

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x110

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 6
TimeDateStamp 2026-Feb-17 17:39:29
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0xce00
SizeOfInitializedData 0x97000
SizeOfUninitializedData 0
AddressOfEntryPoint 0x0000000000001264 (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0xa7000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_GUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 457fb5274ed18adc024e01b603e258a4
SHA1 159fdb99c377edc82c57d34217a711578edb0e63
SHA256 336709c08beca21a675f029c2d588ac0cae8cc8f42422039cbb827b6284374e5
SHA3 7d6db62af5f0503638e32b2c5a2ebd94056e5e490598ebed73cb0495875d3499
VirtualSize 0xcdb0
VirtualAddress 0x1000
SizeOfRawData 0xce00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.45019

.rdata

MD5 3db1ab62ecc6d4d3db66fbcbe9ea0913
SHA1 346556fc0e2f2eb8ab19da3840386dee784b8792
SHA256 5eebc9c7f85f2d9adaafb09e8fc7b93f18c3bb4d3d3e6a6bffadbf6ec28c055a
SHA3 a1cedfacaaa37478368d1f1a28256e09c5a4b0d65f756c67bbe9c1dc61a6ca9a
VirtualSize 0x977c
VirtualAddress 0xe000
SizeOfRawData 0x9800
PointerToRawData 0xd200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.69261

.data

MD5 0822db25bce65451a1219de812eea533
SHA1 bf4c918ff2184dfeba8cd4f98b21e11d75de05e7
SHA256 8987031a7fb9e9ffe2b44dad568693d86af933f2b44447b6f5c1159bd0750a79
SHA3 83fbc2d299cd2e5b71ce2f669f319b95fcab94178c620dd04d72a1071efde7b0
VirtualSize 0x1d88
VirtualAddress 0x18000
SizeOfRawData 0xc00
PointerToRawData 0x16a00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 1.90767

.pdata

MD5 017f81338461c6b246bdb8ce1bf5fc08
SHA1 aa79861d4dea94c5fd283f1359435734dfb03517
SHA256 d1cc88f6e981b629ad1f47d33507ac8b71f82346871b690375752ffc69c6063d
SHA3 e197cfb7530afb455ed4ebbd26984d4562c62ea8c9c65f07f5d04c80970ee830
VirtualSize 0xec4
VirtualAddress 0x1a000
SizeOfRawData 0x1000
PointerToRawData 0x17600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.60208

.rsrc

MD5 239d60a9c70f3f927cd16d71969fff44
SHA1 07976b13e84488ca94b3a6ecb28e4d763ff78cb2
SHA256 f267f8c0f9e7354c9f02dc7b58b0bec62ed7cbc4ad6011e06068024cc4f019a8
SHA3 43b5fbf95f976c5c0b9ccd6a8b9c7691fc260b5160e64bae4173807f25d436db
VirtualSize 0x8a020
VirtualAddress 0x1b000
SizeOfRawData 0x8a200
PointerToRawData 0x18600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.15559

.reloc

MD5 3ab8a3a955e5040e25556085e21a2be2
SHA1 f29b173f0ea430d70ff0803cbaa89fa1d4d024d9
SHA256 119eed3c019ffdb0bba4cee06b80d85e78a679f1bb17317cbb6a352bb4102d7a
SHA3 a5c3cb0725d2fd68e14265c6e03629d6270e73c1f049eb78b3e40b7b2535d802
VirtualSize 0x658
VirtualAddress 0xa6000
SizeOfRawData 0x800
PointerToRawData 0xa2800
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 4.86735

Imports

UnityPlayer.dll UnityMain2
KERNEL32.dll HeapAlloc
WriteConsoleW
QueryPerformanceCounter
GetCurrentProcessId
GetCurrentThreadId
GetSystemTimeAsFileTime
InitializeSListHead
RtlCaptureContext
RtlLookupFunctionEntry
RtlVirtualUnwind
IsDebuggerPresent
UnhandledExceptionFilter
SetUnhandledExceptionFilter
GetStartupInfoW
IsProcessorFeaturePresent
GetModuleHandleW
CloseHandle
RtlUnwindEx
GetLastError
SetLastError
EnterCriticalSection
LeaveCriticalSection
DeleteCriticalSection
InitializeCriticalSectionAndSpinCount
TlsAlloc
TlsGetValue
TlsSetValue
TlsFree
FreeLibrary
GetProcAddress
LoadLibraryExW
EncodePointer
RaiseException
RtlPcToFileHeader
GetStdHandle
WriteFile
GetModuleFileNameW
GetCurrentProcess
ExitProcess
TerminateProcess
GetModuleHandleExW
HeapFree
FindClose
FindFirstFileExW
FindNextFileW
IsValidCodePage
GetACP
GetOEMCP
GetCPInfo
GetCommandLineA
GetCommandLineW
MultiByteToWideChar
WideCharToMultiByte
GetEnvironmentStringsW
FreeEnvironmentStringsW
SetStdHandle
GetFileType
GetStringTypeW
FlsAlloc
FlsGetValue
FlsSetValue
FlsFree
LCMapStringW
GetProcessHeap
HeapSize
HeapReAlloc
FlushFileBuffers
GetConsoleOutputCP
GetConsoleMode
SetFilePointerEx
CreateFileW

Delayed Imports

AmdPowerXpressRequestHighPerformance

Ordinal 1
Address 0x18004

D3D12SDKPath

Ordinal 2
Address 0x18008

D3D12SDKVersion

Ordinal 3
Address 0xe320

NvOptimusEnablement

Ordinal 4
Address 0x18000

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x468
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.22383
MD5 1b176b80e2bbd77fe5f2b3d96a26c21d
SHA1 637e9f38562b7754c660513c59a14e70e8395bcf
SHA256 fb70f4dcacd3b7242d4cef39a83a8280ff5614b0d4b66d8e7f92fa15ea339e40
SHA3 b48e818cba6bfea388ead06b5ae4bb9fa9cf553c958a945958de64f1ba0304eb

2

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x988
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.26859
MD5 83d94d53b2d8eec36a7de31cd5def887
SHA1 f2ec30948561c8dd666a7f9462e559e3c060b246
SHA256 a86acde8011d12173186b538d70f8b70b92a33bea7439cd898ea10d4f2c1b7c0
SHA3 666c2b6d27b5aaaf2297d1fe511210db29c11a25571d145547d3ebd715c58221

3

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.30151
MD5 301a90233c3f7516ccddcd3c188dc845
SHA1 d260d1410442136b701f585c10b8aa952993b76c
SHA256 2bc67acbe285ebc041f593ab03c2cccff4e3a7e0e31aa6d4d6bc988fafd75e3e
SHA3 cb49f61991c4d95c7fafe17633fea923a98d6ef43922351bf913d441953e045d

4

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.21505
MD5 0876881bdde50df79342745fdaf875ff
SHA1 4a6ff5b805c03537f1f2bfe2e8baf2ec63cce1ca
SHA256 69cbcd966c32e532aa40cbb02950c1591fb288bef58f95b2df02ad827a589912
SHA3 c821dd3a6daab39574c089d89f4bf91ed73e8d2001ba6d13d6668309763898fc

5

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x4228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.18862
MD5 bb2bbfc8137a493c6283f0d4783add11
SHA1 1572a0dbc6dae113dada8210a32184374220d7a2
SHA256 df6fe4987856028a3e5e6a5daa35869e5ea1089afceff3d02c9e2c8c4a5b8d95
SHA3 528ac32cb5a807d7efc139de47b0e72712ce50a1476f6343f8904ab32100e161

6

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x94a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.12863
MD5 95dbd686918d996bee56b82b61708c8c
SHA1 020d05da4fa74125447baba5e1de27442630d368
SHA256 cad18016a619b7cf926b382a1649880c3cb8ce947f979ea7b19f3403134b0517
SHA3 7aa0e3923c0ea75107e5f75413fa476eafb47b164c2d509a6fcbf19d5102fab6

7

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x10828
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.70793
MD5 4b3954e002d12f6e4852fb2510f04a03
SHA1 1321eecf003886b722e204f1bd5c9ce2ea93a562
SHA256 2ccad98d626268940e75d34a314e5d788cd9db0267195ba58160bd277fffc1cc
SHA3 deab9133e47e17bb56f509f2b50e4b59552d3b7dc08186665cbbffca2201ba97

8

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25228
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.16476
MD5 eb91b1a8eb9dca176155339bb87d428c
SHA1 b81816135f3edc1a74875dda73c12fdf5f2e252c
SHA256 6f59035ec378d596d5cc3836ac8adcb81a0a68bf7885ae409420c40e6fde1ba4
SHA3 3a0a38b96f3309250f70c1774d8405e3904d94c693e87a4b8c7579e9f19cbbc6

9

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x42028
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.17189
MD5 6f8e01464512a86ef79b68865eba4647
SHA1 bf3f049294cd08f52697209ccdaa31f9cdf99cca
SHA256 e0ad1a39b1234dfdefb69e4a8879be30ee61061cc7ac4866bfed82f6ea1f345f
SHA3 113c331b2abfa0a6b8804a6046e2f474d5b0d4aa2283fc83290a491aae29eb3b

103

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x84
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.04448
Detected Filetype Icon file
MD5 3bf2dac037ce87794e66ff7f054e913f
SHA1 52ca961fd37ad960905a681d1db5157508ef1602
SHA256 2a87b1f32c5d0435090c72c392b75394f706e5750eff64fd85d25e1c622ee581
SHA3 8454d3273522657b5926068082b2cb88f6dbf352e7e9568008c0e33c792f349b

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x214
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.51799
MD5 fbee4e157caa6ce89fb38a640ddf2cfa
SHA1 268cfa468181f3e8651a4dfda2619817f576b5c4
SHA256 88ecf7262d84c07c727fd67cae7a3a07f41895d70d6ae14de22a402a4242af55
SHA3 9728b3fbe772438f6b590bee702cf480ea28b584b87a287cad48333d6155f659

1 (#3)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x545
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 5.24993
MD5 9df530c2f4fbe460da74e130d5d351a9
SHA1 f8719b6c74e0179556c1a18f214d6c1bbff8f823
SHA256 3c357bd1125971bda05bc59eaeca279da41715741e2535e9e75c94273b1c3a1f
SHA3 ce3dd46f87bd462f8730fca18daea6df444422f8d88b810aefbd7b2e62536dee

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 6000.3.10.24332
ProductVersion 6000.3.10.24332
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_UNKNOWN
Language English - United States
FileVersion (#2) 6000.3.10.14901004
LegalCopyright (c) 2005-2026 Unity Technologies. All rights reserved.
ProductVersion (#2) 6000.3.10f1 (e35f0c77bd8e)
Resource LangID English - United States

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Feb-17 17:39:29
Version 0.0
SizeofData 151
AddressOfRawData 0x15d68
PointerToRawData 0x14f68
Referenced File C:\build\output\unity\unity\artifacts\WindowsPlayer\Win_x64_VS2022_VB_MT_nondev_i_r\WindowsPlayer_player_Master_il2cpp_x64.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Feb-17 17:39:29
Version 0.0
SizeofData 20
AddressOfRawData 0x15e00
PointerToRawData 0x15000

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Feb-17 17:39:29
Version 0.0
SizeofData 836
AddressOfRawData 0x15e14
PointerToRawData 0x15014

TLS Callbacks

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x140018040

RICH Header

XOR Key 0x7914df52
Unmarked objects 0
ASM objects (28900) 5
C++ objects (28900) 138
C objects (28900) 10
Imports (28900) 2
ASM objects (34321) 9
C objects (34321) 16
C++ objects (34321) 40
Imports (34433) 3
Total imports 89
C++ objects (34433) 2
Exports (34433) 1
Resource objects (34433) 1
Linker (34433) 1

Errors

Leave a comment

No comments yet.